testing-end-user

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent for a testing skill, but its footprint is broad because it converts user/project-authored task content directly into shell execution against real infrastructure. There is no clear credential-harvesting or malicious exfiltration path in the provided text, yet the combination of arbitrary command execution, external network reach, file/log access, and untrusted task parsing makes it a high-risk operational skill rather than a benign narrow verifier.

Confidence: 86%Severity: 74%
Audit Metadata
Analyzed At
Mar 18, 2026, 07:28 PM
Package URL
pkg:socket/skills-sh/deepeshbodh%2Fhuman-in-loop%2Ftesting-end-user%2F@5c75f3daaaf8192622285c0badce89d18cfdec1d